Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In January 2025
OpenVPN Connect before version 3.5.0 can contain the configuration profile's clear-text private key which is logged in the application log, which an unauthorized actor can use to decrypt the VPN traffic
CVSS Score
7.5
EPSS Score
0.005
Published
2025-01-06
OpenVPN before 2.6.11 does not santize PUSH_REPLY messages properly which an attacker controlling the server can use to inject unexpected arbitrary data ending up in client logs.
CVSS Score
9.1
EPSS Score
0.008
Published
2025-01-06
Memory corruption occurs when invoking any IOCTL-calling application that executes all MCDM driver IOCTL calls.
CVSS Score
7.8
EPSS Score
0.001
Published
2025-01-06
Memory corruption can occur when process-specific maps are added to the global list. If a map is removed from the global list while another thread is using it for a process-specific task, issues may arise.
CVSS Score
7.8
EPSS Score
0.001
Published
2025-01-06
Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows unauthorized programs to be injected into security-sensitive images, enabling the booting of a tampered IFS2 system image.
CVSS Score
8.4
EPSS Score
0.001
Published
2025-01-06
Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.
CVSS Score
7.5
EPSS Score
0.004
Published
2025-01-06
Transient DOS can occur when GVM sends a specific message type to the Vdev-FastRPC backend.
CVSS Score
5.5
EPSS Score
0.001
Published
2025-01-06
Uncontrolled resource consumption when a driver, an application or a SMMU client tries to access the global registers through SMMU.
CVSS Score
7.5
EPSS Score
0.001
Published
2025-01-06
Memory corruption when IOCTL call is invoked from user-space to read board data.
CVSS Score
7.8
EPSS Score
0.001
Published
2025-01-06
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
CVSS Score
7.8
EPSS Score
0.001
Published
2025-01-06


Contact Us

Shodan ® - All rights reserved